信安2班 02
1.DNS的安装
安装DNS服务之前,为服务器配置固定的IP地址(/etc/sysconfig/network-scripts/ifcfg-ens33 网卡配置地址)
配置DNS地址
配置好yum源
关闭防火墙,关闭Selinux.
做好网卡配置之后的检测:
重启网卡:systemctl restart network
查看IP地址是否配置成功: ip addr
检查网络连通性: ping www.baidu.com
检查yum源是否正常: yum repolist
查看系统是否已经安装DNS软件包(#yum list installed|grep bind),如果bind软件包尚未安装,使用yum命令安装:(#yum install -y bind)
2.DNS的启动
(1)启动命令: #systemctl start named
(2)设置named服务开机自启动: #systemctl enable named
3.认识named服务的模板文件
安装bind文件后,系统会生成named服务的配置文件模板,这些文件包括(/etc/named.conf,/etc/named.rfc1912.zones,/var/named/named.ca,/var/named/named.localhost等)
1. 命令: vim /etc/named.conf
[root@localhost ~]# vim/etc/named.conf
options {
listen-on port 53 { 127.0.0.1(改成自己的DNS服务器地址) ;};
listen-on-v6 port 53 { ::1; };
directory"/var/named";
......
allow-query { any; };
recursion yes;
logging {
channel default debug {
file "data/named.run";
severity dynamic;
};
};//保持默认
zone "." IN {
type hint;
file "named.ca";
};
include "/etc/named.rfc1912.zones";//配置扩展文件
include "/etc/named.root.key";
2. 命令:vim /etc/named.rfc1912.zones
[root@localhost ~]# vim /etc/named.rfc1912.zones
zone "localhost.localdomain" IN{
type master;
file "named.localhost";
allow-update { none; };
};//复至正向模板五行至文件末尾
...
zone "0.in-addr.arpa" IN{
type master;
file "named.empty";
allow-update { none; }
};//复制反向模板五行至文件末尾
4.配置正向和反向解析文件
正向:sdcet.cn.zone
[root@localhost ~] ls /var/named/
[root@localhost ~]# cp-p /var/named/named.localhost /var/named/sdcet.cn.zone //以其中的文件为模板直接创建正向解析文件
[root@localhost ~]# vim /var/named/sdcet.cn.zone
反向:100.168.192.zone
[root@localhost ~]# cp -p/var/named/named.localhost /var/named/100.168.192.zone
[root@localhost ~]# vim /var/named/100.168.192.zone
[root@localhost ~]# vim /etc/resolv.conf
DNS服务配置完成之后,重启服务使配置生效:
[root@localhost ~]# systemctl restart named